What ClockIN processes, why we use it, what stays private and how to make a privacy or human-review request. Updated 14 September 2026.
This can include account details, profile information, projects, posts, skills, applications, messages, community activity, opportunity information, settings, feedback and files you intentionally upload.
The public ATS + Tools collection can be used without an account. Resume files, pasted resume text and job-description text are processed to generate the requested result and are not stored by the public career-tools service. The service can keep a short-lived salted network fingerprint, tool identifier, request count and timestamp for abuse prevention. It does not store the raw network address in that ledger.
Your sign-in email is account data held through the authentication service and is not copied into the public profile simply to display it in Profile Studio. Secondary email and phone fields have separate visibility controls.
A resume used in the public tools is processed transiently as described above. A resume imported into Profile Studio is processed to extract profile and ATS-style fields and is not intended to become public automatically. A resume intentionally submitted with a ClockIN job application can be stored privately so authorized hiring-side users can review that application. These workflows have different storage and access behavior.
Skill Proof can process assessment answers, timing, difficulty, evidence metrics, scores, levels and integrity signals needed to run and protect an assessment. Public proof surfaces use derived results rather than exposing the private question bank, answer rubrics or raw assessment history. When a member has an awarded Skill Proof badge, the linked ClockIN-issued certificate and public verification page may show their public profile name and username, assessed skill, medal, score, award date, expiry date and certificate ID. The download is a snapshot; the verification page checks current award status. Private answers, institutional verification files and contact details are not published on certificates. Quick Math separately stores your account-linked practice start and completion timestamps to enforce three free attempts; its browser-only practice score is not a verified Skill Proof result or public certificate.
When a role uses a ClockIN interview, we may process camera and microphone recordings, screen recordings where enabled, answers, transcripts where available, timestamps, device/session events and integrity telemetry. Before browser media permissions are requested, ClockIN shows a feature notice describing the configured recording, transcription and AI-assisted review. Interview media is private to authorized review surfaces. Integrity telemetry is review evidence, not proof of dishonesty, and is kept separate from competence scoring.
ClockIN can use language-model or other automated systems to summarize evidence, generate project-specific questions, assist interviews, rank or recommend job-relevant evidence and help hiring teams review applications. These systems can be imperfect. ClockIN does not present them as an undisclosed autonomous final hiring decision. Signed-in members can use Privacy & Data to ask for an explanation, contest an AI-assisted result or request meaningful human review of a specific ClockIN application or interview.
Job and candidate recommendations can use job-relevant data such as skills, Skill Proof, profile text, work evidence, stated role preferences, location, remote preferences and work mode. Candidate discovery only includes people who opted in. ClockIN does not intentionally use protected traits as candidate-ranking inputs.
If you submit a college or work verification request, ClockIN can process the organization name, optional institutional email, optional private proof document, reviewer note, verification status and review history. Uploaded proof is not public. The verification form records which Privacy Notice version was shown when the request was submitted.
Projects can include your description, personal contribution statement, project context, optional AI-use disclosure and evidence you intentionally attach. Evidence can be a public link or an uploaded file such as a document, spreadsheet, presentation, image, video, dataset or other artifact. You can mark evidence public or verification-only. Verification-only evidence is restricted to you, authorized ClockIN operations or review surfaces, and systems used to provide the verification workflow; it is not shown as a public project attachment.
Source-control verification is optional. If you verify a public GitHub repository or deployed project, ClockIN can store the source URL, verification challenge state, verification timestamp and public metadata needed for the project record. Project Defence can process the project description, contribution statement, evidence metadata and notes, bounded public repository excerpts and recent repository changes when available, generated questions, written answers, model evaluation and verification results. For uploaded non-repository files, the current automated Defence flow uses the file metadata and the context you provide rather than silently treating the full file as model-readable content; authorized reviewers can access an uploaded verification artifact when review requires it. Source verification demonstrates control of that source at that time; it does not by itself prove authorship.
ClockIN can store follows, threaded replies, reactions and mentions so conversations and network features work. A follow notification may include a short public-profile summary of the follower. Mention records are visible only as needed to the author, the mentioned person and product operations.
ClockIN may process sign-in events, page interactions, notification state, security signals, timestamps, rate-limit state and other operational data needed to provide features, prevent abuse and understand reliability.
We use information to provide accounts and profiles, run feed and messaging features, recommend opportunities or talent, operate communities, provide public career tools, run project and hiring workflows, maintain security, respond to support and privacy requests, improve the product and comply with applicable obligations.
Public profile, project, public Project Proof evidence, post and community information can be visible to other people according to product controls. Application data, account-security information, private contact data, interview media, direct messages, identity-verification documents, verification-only Project Proof evidence, Project Defence submissions and other restricted records are handled through feature-specific access rules.
ClockIN relies on infrastructure and service providers for hosting, database, authentication, email and model processing where a feature requires them. Depending on the provider and feature, data can be processed outside your country. ClockIN maintains a public service-provider page and should add any new material provider before or when that provider begins processing production user data.
Signed-in members can open Settings → Privacy & Data to request access/export, correction, account deletion, restriction or objection, withdrawal of an optional permission, or another privacy action. The same page shows the status of submitted requests. Some deletion requests can require separation or limited retention where records are needed for security, another person's records, dispute handling, hiring accountability, a legal hold or another applicable obligation.
Different records have different retention needs. ClockIN maintains an internal retention catalog and is progressively moving data classes toward explicit retention handling rather than indefinite storage. Interview sessions already carry a session-level retention period. Other categories use provisional review periods until jurisdiction-specific and contractual requirements are finalized.
ClockIN uses access controls, row-level security, authentication assurance checks, private storage, rate limits and platform security features intended to protect data. No internet service can guarantee absolute security. Use a strong password, enable two-factor authentication when available, and report suspicious activity promptly.
As currently designed, ClockIN does not sell personal information to advertisers or give advertisers access to private conversations. If the business model materially changes, this notice will be updated before that change is applied.
ClockIN is evolving, so this notice may change as features, providers and applicable obligations change. Material updates will be reflected here and, where appropriate, surfaced at the point where the relevant data is collected.
For a tracked privacy request, use Privacy & Data after signing in. You can also contact info@goclockin.com.